Microsoft's Small Step to Disable Macros Is a Huge Win for Security

  • 📰 WIREDBusiness
  • ⏱ Reading Time:
  • 55 sec. here
  • 2 min. at publisher
  • 📊 Quality Score:
  • News: 25%
  • Publisher: 68%

Technology Technology Headlines News

Technology Technology Latest News,Technology Technology Headlines

Microsoft Disabling Macros Is a Huge Win for Security

At least a quarter of ransomware attacks against businesses or other organizations start with phishing attempts, which often dangle a malicious document laced with tainted macros, according to Brett Callow, a threat analyst at the antivirus company Emsisoft.

“We are always working to improve security,” said a Microsoft spokesperson in a statement. “Our products currently provide a warning to all customers that requires them to click before running macros from the internet. This new feature goes even further with an extra step to protect customers in everyday scenarios.” The company declined to say specifically why it took the step now and had not done it sooner.

By disabling macros specifically in files obtained from the internet, Microsoft appears to be attempting a diplomatic solution. Windows marks files you download with a metadata attribute known as “Mark of the Web” or “zone.identifier.” These help the system do things like warn you when you're about to run software from the internet that may not be trustworthy.

“As a red teamer, I think this is a great move,” says independent researcher Cedric Owens. “Office macro abuse has had a long tail, and since there is rarely a valid use for Office files using macros, especially in files obtained from the internet, I'm glad to see Microsoft make this change.”

 

Thank you for your comment. Your comment will be published after being reviewed.
Please try again later.
We have summarized this news so that you can read it quickly. If you are interested in the news, you can read the full text here. Read more:

 /  🏆 68. in TECHNOLOGY

Technology Technology Latest News, Technology Technology Headlines

Similar News:You can also read news stories similar to this one that we have collected from other news sources.

Apple to release important AirTag updates to prevent unwanted trackingApple is taking the first serious steps toward improving AirTag's security features by releasing new software update to prevent unwanted tracking. I wonder if there's any mention by Apple how it will support Android users to locate unwanted AirTags as the current app (Tracker Detect) is not really useful.
Source: PhoneArena - 🏆 322. / 59 Read more »